Coming soon - Get a detailed view of why an account is flagged as spam!
view details

This post has been de-listed

It is no longer included in search results and normal feeds (front page, hot posts, subreddit posts, etc). It remains visible only via the author's post history.

6
I made a terrible mistake and don’t know the next move
Post Body

So a little back story I have been going down the self taught path for software development for the last 4 years or so. Naively I thought I could manage a server looking after a family members business that was hosting their ERP software.

Yesterday I noticed some suspicious requests in the log file looking for files such as “/.env” among others, most of these returned 4xx status codes, a few formatted as get requests “?url=.env” were ignored and the server just returned the home page but I spent most of the day hardening the security.

Here is where we get to the problem, on the server someone has logged in as the root user several times, no log of the commands they ran and their IP has been reported on AbuseIPDB 8 times.

Any advice on next steps would be appreciated.

Author
Account Strength
60%
Account Age
2 years
Verified Email
Yes
Verified Flair
No
Total Karma
1,030
Link Karma
103
Comment Karma
863
Profile updated: 3 days ago
Posts updated: 1 month ago

Subreddit

Post Details

We try to extract some basic information from the post title. This is not always successful or accurate, please use your best judgement and compare these values to the post title and body for confirmation.
Posted
2 months ago